Just don’t use the built in firewall and use an external of your choice. That works for me.
There's also the trust issue; the VPN problem has been known for years. If they won't maintain a key security component of their key security device, why would I trust them with anything?